Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 04-08-2022 Exécuté par romai (administrateur) sur MSI (Micro-Star International Co., Ltd. Katana GF76 11UC) (10-08-2022 20:20:51) Exécuté depuis C:\Users\romai\Downloads Profils chargés: romai Plate-forme: Microsoft Windows 11 Famille Version 21H2 22000.856 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (A-Volute SAS -> A-Volute) C:\Users\romai\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <2> (C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe (C:\Program Files\Google\Chrome\Application\chrome.exe ->) (NICOLAS_COOLMAN -> Nicolas Coolman) [Fichier non signé] C:\Users\romai\Downloads\ZHPSuite.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\WindowsApps\MicrosoftTeams_22183.300.1431.9295_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.47\msedgewebview2.exe <18> (C:\Users\romai\AppData\Roaming\Zoom\bin\Zoom.exe ->) (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) C:\Users\romai\AppData\Roaming\Zoom\bin\zWebview2Agent.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe (DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxEMN.exe (explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (explorer.exe ->) (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.) C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <65> (explorer.exe ->) (Native Instruments GmbH -> Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareAccessibilityHelper.exe (explorer.exe ->) (nordvpn s.a. -> TEFINCOM S.A.) E:\programme\NordVPN.exe (explorer.exe ->) (Tresorit Kft. -> Tresorit) C:\Users\romai\AppData\Local\Tresorit\v0.8\Tresorit.exe (explorer.exe ->) (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) C:\Users\romai\AppData\Roaming\Zoom\bin\Zoom.exe <2> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (services.exe ->) (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe (services.exe ->) (Focusrite Audio Engineering Ltd.) [Fichier non signé] C:\Program Files\Focusrite\Focusrite Control\Server\ControlServer.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4ce8bafd96682424\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_f94b71985382657d\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_357acc06f2c40efb\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\AS\IAS\IntelAudioService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\DriverStore\FileRepository\bluetoothmousethemenotificationdriver.inf_amd64_2e0b64a02f0c9539\BluetoothMouseThemeNotificationService.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.67.21001.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.67.21001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Micro-Star International CO., LTD. -> ) C:\Program Files (x86)\MSI\MSI NBFoundation Service\Sendevsvc.exe (services.exe ->) (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\MSI NBFoundation Service\MSIAPService.exe (services.exe ->) (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Windows\SysWOW64\MSIService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe (services.exe ->) (Native Instruments GmbH -> Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe (services.exe ->) (Native Instruments GmbH -> Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHostIntegrationAgent.exe (services.exe ->) (nordvpn s.a. -> TEFINCOM S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe (services.exe ->) (nordvpn s.a. -> TEFINCOM S.A.) E:\programme\nordvpn-service.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmi.inf_amd64_e55d0d5f187e4e04\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe <2> (services.exe ->) (Symantec Corporation -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.20.5.40\NortonSecurity.exe <2> (svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicSvc64.exe (svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe (svchost.exe ->) (A-Volute) C:\Program Files\WindowsApps\A-Volute.Nahimic_1.9.10.0_x64__w2gh52qy24etm\Nahimic3.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SecHealthUI_1000.22000.1.0_neutral__8wekyb3d8bbwe\SecHealthUI.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <5> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.565.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe (svchost.exe ->) (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\MSI NBFoundation Service\OmApSvcBroker.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.TerminalServer.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControlEngine.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe [3477944 2022-04-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Focusrite Notifier] => C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe [767552 2022-05-20] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3427104 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3951024 2019-10-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) HKLM-x32\...\Run: [IJNetworkScanUtility] => C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [206240 2010-08-23] (Canon Inc. -> CANON INC.) HKLM\...\Policies\Explorer: [HideSCAHealth] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-3166150232-4121134216-1366025647-1003\...\Run: [NordVPN] => E:\programme\NordVPN.exe [280952 2022-02-18] (nordvpn s.a. -> TEFINCOM S.A.) HKU\S-1-5-21-3166150232-4121134216-1366025647-1003\...\Run: [Tresorit] => C:\Users\romai\AppData\Local\Tresorit\v0.8\Tresorit.exe [38820536 2022-08-03] (Tresorit Kft. -> Tresorit) HKU\S-1-5-21-3166150232-4121134216-1366025647-1003\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-08-12] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3166150232-4121134216-1366025647-1003\...\Run: [GoogleChromeAutoLaunch_7321887F2D8F9B18C731C6FF9FB73EC5] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 [2851656 2022-07-30] (Google LLC -> Google LLC) HKLM\...\Windows x64\Print Processors\Canon MX350 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDA6.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MX350 series: C:\Windows\system32\CNMLMA6.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [359936 2012-06-14] (CANON INC.) [Fichier non signé] HKLM\...\Print\Monitors\Canon MP FAX Language Monitor MX350 series: C:\Windows\system32\CNCF2Ll.DLL [343552 2009-10-22] (Microsoft Windows Hardware Compatibility Publisher -> Canon Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\104.0.5112.81\Installer\chrmstp.exe [2022-08-09] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NIHardwareAccessibilityHelper.exe.lnk [2022-07-04] ShortcutTarget: NIHardwareAccessibilityHelper.exe.lnk -> C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareAccessibilityHelper.exe (Native Instruments GmbH -> Native Instruments GmbH) GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01987896-6900-4B82-9F4D-FC2C4DA7C1D7} - System32\Tasks\NahimicTask32 => C:\WINDOWS\system32\..\SysWOW64\NahimicSvc32.exe [834760 2022-04-11] (A-Volute SAS -> Nahimic) Task: {06BDF44E-6812-48D8-A772-871AAAB6C0C0} - System32\Tasks\Microsoft\Windows\Management\Autopilot\DetectHardwareChange => {62B2DD2C-F129-42EE-BF59-55D3FD21C215} C:\WINDOWS\System32\Autopilot.dll [217088 2022-08-08] (Microsoft Windows -> Microsoft Corporation) Task: {0841DD3C-F45E-44BC-B44E-300535571402} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646896 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {0C275D2E-5F3C-4E4B-A888-65D7D92142A3} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [1826640 2021-09-04] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {1CDBEC67-41A7-4FAE-B243-012175A330CE} - System32\Tasks\MicrosoftEdgeShadowStackRollbackTask => C:\Program Files (x86)\Microsoft\Edge\Application\104.0.1293.47\Installer\setup.exe [3286952 2022-08-07] (Microsoft Corporation -> Microsoft Corporation) Task: {1FF3EFB3-A5E0-4DDF-9742-A9F53A960711} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {23D2367E-B9B9-427C-9B4E-22BD1CA4FA0E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2B96CA4D-279E-439F-BC8F-233B9CB85D84} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {34DB2BFE-3ACF-45FC-AB64-A67C54B2EFD9} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.20.5.40\WSCStub.exe [644608 2020-08-01] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {360024B0-FC95-4B58-AF03-62EDF37B71E3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-29] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3DFCF34A-38E0-45C6-A395-E16ED506BBE6} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {414D64F2-0C57-4196-BDF1-949251DBD950} - System32\Tasks\Microsoft\Windows\Management\Autopilot\RemediateHardwareChange => {62B2DD2C-F129-42EE-BF59-55D3FD21C215} C:\WINDOWS\System32\Autopilot.dll [217088 2022-08-08] (Microsoft Windows -> Microsoft Corporation) Task: {4F9D57AC-2E8B-46F4-BFCD-4C3A133EE247} - System32\Tasks\OmApSvcBroker => C:\Program Files (x86)\MSI\MSI NBFoundation Service\OmApSvcBroker.exe [542120 2021-07-26] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) Task: {51A8DD99-F1CE-465D-8B85-A368DE5DCB32} - System32\Tasks\GoogleUpdateTaskMachineUA{8AD1F887-0F8A-4901-B1A2-65656347EC32} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-28] (Google LLC -> Google LLC) Task: {567491A2-532C-46B2-8081-5135E67E94ED} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5AA1F8C5-1BA7-4392-BE95-A5883035E93E} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {5BEB9068-1418-410D-A5D5-C72E6C2CF528} - System32\Tasks\NahimicTask64 => C:\WINDOWS\system32\.\NahimicSvc64.exe [1095880 2022-04-11] (A-Volute SAS -> Nahimic) Task: {6F31042F-93C4-4F88-8F75-BEDE625955EC} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {71D9CCE1-C448-4063-8781-63D95FC3E77B} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145328 2022-08-09] (Microsoft Corporation -> Microsoft Corporation) Task: {80F45329-BBF1-4277-BDD8-19A09A69903C} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [834760 2022-04-11] (A-Volute SAS -> Nahimic) Task: {8B48ECDC-6FEC-4F52-A3E9-4561E672661F} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3427104 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {93F45A98-6377-4412-A73B-0F348BFB9317} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9DD7519F-5C86-43DB-AD60-69AB500DE15C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-09] (Microsoft Corporation -> Microsoft Corporation) Task: {A345D453-B5E9-4F83-8883-63A179EB7421} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-29] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A6FBD9CB-93FF-4554-8DAC-254464BEFB1D} - System32\Tasks\GoogleUpdateTaskMachineCore{91DEF814-3F30-42B7-BBEC-46D6583E5588} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-28] (Google LLC -> Google LLC) Task: {B60CCBA3-0B93-4C85-A2F1-41EC181F2112} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-29] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BD6C6D22-64BD-4017-939F-238CFDAFD106} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {BE365689-D677-4AEE-9C77-4704743DED11} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302128 2021-11-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C0C280F7-54B7-4F7B-870C-EC61404458E6} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [61856 2022-08-09] (Microsoft Corporation -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Pas de fichier) Task: {D1BBA0A6-F311-480B-84A8-F48CEAB32C28} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145328 2022-08-09] (Microsoft Corporation -> Microsoft Corporation) Task: {D41A4221-85BE-4D41-AC8A-E63062A1C8C5} - System32\Tasks\OneDC_Updater => C:\Users\romai\Documents\temp\OneDC_Updater\OneDC_Updater.exe [5311400 2021-04-16] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) <==== ATTENTION Task: {D6BF5B2F-4945-4E1B-864D-FD045F9790D7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-09] (Microsoft Corporation -> Microsoft Corporation) Task: {DE367C3A-1072-4C43-850A-3241CA100A93} - System32\Tasks\NahimicSvc64Run => C:\Windows\system32\NahimicSvc64.exe [1095880 2022-04-11] (A-Volute SAS -> Nahimic) Task: {ECA3D8D7-AA91-4CCC-811D-4A802EAA6224} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-29] (Microsoft Windows Publisher -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.68.1 Tcpip\..\Interfaces\{5adebf54-0f72-4780-a94d-47ac6a3473ef}: [DhcpNameServer] 192.168.1.1 192.168.68.1 HKLM\System\...\Parameters\PersistentRoutes: [169.254.0.0,255.255.0.0,192.168.68.51,1] Edge: ======= Edge Profile: C:\Users\romai\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-08] Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-08-02] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default [2022-08-10] CHR HomePage: Default -> hxxps://www.qwant.com/ CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxps://www.qwant.com/" CHR Extension: (Verbling Screensharing Extension) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\binpgcmihdhgkgopkgfbmpladkgkdanl [2022-06-28] CHR Extension: (Appel Skype) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2022-06-28] CHR Extension: (Drumtrackz) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\cciklmellmkeeeibdekdkbacdllgfbpa [2022-06-28] CHR Extension: (Pro Guitar Tuner) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnemellbcpjiodfgadpoebbjobfaoiga [2022-06-28] CHR Extension: (Tresorit for Gmail) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\coafedlchdmbopniifkflhjkmjoldmbc [2022-08-09] CHR Extension: (React Developer Tools) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmkadmapgofadopljbjfkapdkoienihi [2022-07-14] CHR Extension: (Google Docs hors connexion) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-07-26] CHR Extension: (Office Online - Copier et coller) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifbmcpbgkhlpfcodhjhdbllhiaomkdej [2022-06-28] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-08-10] CHR Extension: (Find anyone's email - Contact Out) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjdemeiffadmmjhkbbpglgnlgeafomjo [2022-07-06] CHR Extension: (StayFocusd) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\laankejkbhbdhmipfmgcngdelahlfoji [2022-06-28] CHR Extension: (MetaMask) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2022-08-08] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\romai\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-28] CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3815712 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3580200 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) R2 BluetoothMouseThemeNotificationService; C:\WINDOWS\System32\DriverStore\FileRepository\bluetoothmousethemenotificationdriver.inf_amd64_2e0b64a02f0c9539\BluetoothMouseThemeNotificationService.exe [1071432 2021-10-24] (Microsoft Corporation -> Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12102608 2022-08-09] (Microsoft Corporation -> Microsoft Corporation) R2 Focusrite Control Server; C:\Program Files\Focusrite\Focusrite Control\Server\ControlServer.exe [1449472 2022-05-26] (Focusrite Audio Engineering Ltd.) [Fichier non signé] R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\\AS\\IAS\\IntelAudioService.exe [532648 2021-11-30] (Intel Corporation -> Intel) R2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [86776 2020-12-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8680192 2022-08-10] (Malwarebytes Inc. -> Malwarebytes) R2 Micro Star SCM; C:\Windows\SysWOW64\MSIService.exe [168056 2019-05-07] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) R2 MSI Foundation Service; C:\Program Files (x86)\MSI\MSI NBFoundation Service\MSIAPService.exe [87976 2021-09-03] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) R2 MSI Sendevsvc; C:\Program Files (x86)\MSI\MSI NBFoundation Service\Sendevsvc.exe [307624 2021-04-16] (Micro-Star International CO., LTD. -> ) R2 MSI_Central_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [150840 2021-06-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36152 2021-08-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [39760 2021-05-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1921224 2022-04-11] (A-Volute SAS -> Nahimic) R2 NIHostIntegrationAgent; C:\Program Files\Common Files\Native Instruments\Hardware\NIHostIntegrationAgent.exe [24597840 2022-05-02] (Native Instruments GmbH -> Native Instruments GmbH) R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2021-06-07] (nordvpn s.a. -> TEFINCOM S.A.) R2 nordvpn-service; E:\programme\nordvpn-service.exe [281464 2022-02-18] (nordvpn s.a. -> TEFINCOM S.A.) R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.20.5.40\NortonSecurity.exe [344760 2020-08-01] (Symantec Corporation -> Symantec Corporation) S3 nsWscSvc; C:\Program Files\Norton Security\Engine\22.20.5.40\nsWscSvc.exe [1056096 2020-08-01] (NortonLifeLock Inc. -> NortonLifeLock Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-29] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmi.inf_amd64_e55d0d5f187e4e04\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmi.inf_amd64_e55d0d5f187e4e04\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.20.5.40\Definitions\BASHDefs\20200717.004\BHDrvx64.sys [1951976 2020-08-01] (Symantec Corporation -> Symantec Corporation) R2 BlueStacksDrv_msi2; C:\Program Files\BlueStacks_msi2\BstkDrv_msi2.sys [315768 2020-04-07] (Bluestack Systems, Inc -> Bluestack System Inc.) R3 bomebus; C:\WINDOWS\System32\drivers\bomebus.sys [56376 2018-05-16] (Bome Software GmbH & Co.KG -> Bome Software GmbH & Co. KG) S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [98304 2021-06-05] (Microsoft Corporation) [Fichier non signé] R1 cbfs20; C:\WINDOWS\System32\drivers\cbfs20.sys [449064 2022-04-07] (Microsoft Windows Hardware Compatibility Publisher -> Callback Technologies, Inc. - www.callback.com) S3 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\ccSetx64.sys [192248 2020-08-01] (Symantec Corporation -> Symantec Corporation) R1 CTIIO; C:\Windows\system32\drivers\CtiIo64.sys [17944 2021-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.) R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> ) R3 FocusritePCIeSwRoot; C:\WINDOWS\System32\drivers\FocusritePCIeSwRoot.sys [105192 2022-05-20] (WDKTestCert builds,132265248139626354 -> Focusrite Audio Engineering Ltd.) R3 FocusriteUsb; C:\WINDOWS\System32\drivers\FocusriteUsb.sys [197280 2022-05-20] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.) R3 FocusriteUsbAudio; C:\WINDOWS\System32\drivers\FocusriteUsbAudio.sys [97952 2022-05-20] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.) R3 FocusriteUsbMidi; C:\WINDOWS\System32\drivers\FocusriteUsbMidi.sys [53392 2022-05-20] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.) R3 FocusriteUsbSwRoot; C:\WINDOWS\System32\drivers\FocusriteUsbSwRoot.sys [110864 2022-05-20] (WDKTestCert builds,132265248139626354 -> Focusrite Audio Engineering Ltd.) R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_c330c09d72f3e083\iaLPSS2_GPIO2_TGL.sys [128664 2021-11-05] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_312c3014729186bd\iaLPSS2_I2C_TGL.sys [201376 2021-11-05] (Intel Corporation -> Intel Corporation) S3 IDSVia64; C:\Program Files\Norton Security\NortonData\22.20.5.40\Definitions\IPSDefs\20200717.500\IDSVia64.sys [1451064 2020-08-01] (Symantec Corporation -> Symantec Corporation) R3 IntcUSB; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_2f4c83f014ffdaee\IntcUSB.sys [882848 2021-11-30] (Intel Corporation -> Intel(R) Corporation) R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys [84880 2021-11-05] (Gaussian Mixture Models and Neural Networks Accelerator -> Intel Corporation) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-08-10] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-08-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-08-10] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-20] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [85144 2021-09-13] (A-Volute SAS -> Windows (R) Win 7 DDK provider) R2 NDivert; E:\programme\6.48.18.0\Drivers\NDivert.sys [131456 2022-04-05] (nordvpn s.a. -> Nordvpn S.A.) S1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2022-02-22] (nordvpn s.a. -> TEFINCOM S.A.) S3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S3 RDID1115; C:\WINDOWS\system32\Drivers\RDWM1115.SYS [54784 2021-09-27] (Microsoft Windows Hardware Compatibility Publisher -> Roland Corporation) R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_8522f006d7e88897\rt68cx21x64.sys [458152 2021-09-23] (Microsoft Windows Hardware Compatibility Publisher -> Realtek) S3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\SRTSP64.SYS [889704 2020-08-01] (Symantec Corporation -> Symantec Corporation) S3 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\SRTSPX64.SYS [50920 2020-08-01] (Symantec Corporation -> Symantec Corporation) S3 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\SYMEFASI64.SYS [1964384 2020-08-01] (Symantec Corporation -> Symantec Corporation) S3 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\SymELAM.sys [25080 2020-08-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation) S3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [99912 2021-11-05] (Symantec Corporation -> Symantec Corporation) S3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.20.5.40\SymPlatform\SymEvnt.sys [712424 2020-08-01] (Symantec Corporation -> Symantec Corporation) S3 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\Ironx64.SYS [316488 2020-08-01] (Symantec Corporation -> Symantec Corporation) S3 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\symnets.sys [575328 2020-08-01] (Symantec Corporation -> Symantec Corporation) R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [49744 2021-06-13] (nordvpn s.a. -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-06-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-29] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-29] (Microsoft Windows -> Microsoft Corporation) S3 WINIO; C:\Program Files (x86)\MSI\MSI NBFoundation Service\KernCoreLib64.sys [25656 2018-11-15] (Micro-Star International CO., LTD. -> ) S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2022-07-02] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) S3 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1614050.028\wpCtrlDrv.sys [1013792 2020-08-01] (NortonLifeLock Inc. -> NortonLifeLock Inc.) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-08-10 20:21 - 2022-08-10 20:21 - 000412118 _____ C:\Users\romai\Desktop\ZHPDiag.txt 2022-08-10 20:18 - 2022-08-10 20:21 - 000000000 ____D C:\Users\romai\AppData\Roaming\ZHP 2022-08-10 20:18 - 2022-08-10 20:18 - 000000872 _____ C:\Users\romai\Desktop\ZHPSuite.lnk 2022-08-10 20:18 - 2022-08-10 20:18 - 000000000 ____D C:\Users\romai\AppData\Local\ZHP 2022-08-10 20:17 - 2022-08-10 20:17 - 003489992 _____ (Nicolas Coolman) C:\Users\romai\Downloads\ZHPSuite.exe 2022-08-10 18:54 - 2022-08-10 18:54 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2022-08-10 16:47 - 2022-08-10 16:47 - 000019621 _____ C:\Users\romai\Downloads\RIB_ARNAUD_THERY (2).pdf 2022-08-10 15:33 - 2022-08-10 15:33 - 000015026 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-08-10 15:32 - 2022-08-10 15:32 - 000000000 ___HD C:\$WinREAgent 2022-08-10 15:19 - 2022-08-10 15:19 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2022-08-10 15:19 - 2022-08-10 15:19 - 000158640 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2022-08-10 15:19 - 2022-08-10 15:19 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2022-08-10 15:19 - 2022-08-10 15:19 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-08-10 15:19 - 2022-08-10 15:19 - 000002028 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2022-08-10 15:19 - 2022-08-10 15:19 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-08-10 15:19 - 2022-08-10 15:19 - 000000000 ____D C:\Program Files\Malwarebytes 2022-08-10 14:36 - 2022-08-10 14:36 - 000003887 _____ C:\Users\romai\Downloads\malwarebytes.txt 2022-08-10 14:33 - 2022-08-10 14:33 - 000000000 ____D C:\Users\romai\AppData\Local\mbam 2022-08-10 14:32 - 2022-08-10 14:32 - 002556344 _____ (Malwarebytes) C:\Users\romai\Downloads\MBSetup-FF7D6876-37335.37335.exe 2022-08-10 14:32 - 2022-08-10 14:32 - 002556344 _____ (Malwarebytes) C:\Users\romai\Downloads\MBSetup-37335.37335-consumer.exe 2022-08-09 15:22 - 2022-08-09 15:22 - 000000000 ____D C:\ProgramData\NordUpdater 2022-08-08 16:43 - 2022-08-08 16:43 - 000335872 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-08-08 16:43 - 2022-08-08 16:43 - 000327680 _____ C:\WINDOWS\system32\pnpdiag.dll 2022-08-08 16:43 - 2022-08-08 16:43 - 000069632 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2022-08-08 16:43 - 2022-08-08 16:43 - 000041472 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2022-08-08 15:55 - 2022-08-08 15:55 - 000062562 _____ C:\Users\romai\Downloads\Addition.txt 2022-08-08 15:54 - 2022-08-10 20:21 - 000040352 _____ C:\Users\romai\Downloads\FRST.txt 2022-08-08 15:54 - 2022-08-10 20:21 - 000000000 ____D C:\FRST 2022-08-08 15:52 - 2022-08-08 15:52 - 002370048 _____ (Farbar) C:\Users\romai\Downloads\FRST64.exe 2022-08-08 12:26 - 2022-08-08 12:26 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2022-08-06 17:39 - 2022-08-06 17:39 - 000161000 _____ C:\Users\romai\Downloads\Avis_d_impot_2022_sur_les_revenus_2021.pdf 2022-08-06 17:37 - 2022-08-06 17:37 - 005073749 _____ C:\Users\romai\Downloads\20220806_INV.pdf 2022-08-04 20:35 - 2022-08-04 20:35 - 000000000 _____ C:\WINDOWS\system32\setup4.2.6.tmp 2022-08-04 16:34 - 2022-08-04 16:34 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2022-08-04 08:54 - 2022-08-04 08:54 - 000223415 _____ C:\Users\romai\Downloads\iban.pdf 2022-08-03 18:12 - 2022-08-03 18:12 - 000202020 _____ C:\Users\romai\Downloads\eduardo baixo pra légitime défiance.pdf 2022-08-03 17:36 - 2022-08-03 17:36 - 002204510 _____ C:\Users\romai\Downloads\lerevenu03082022.pdf 2022-08-03 16:55 - 2022-08-03 16:55 - 000000000 ____D C:\Users\romai\Downloads\.tresorit 2022-08-03 16:52 - 2022-08-03 16:52 - 000287968 _____ C:\Users\romai\Downloads\BNP Paribas-Convention-de-compte-34953743232.pdf 2022-08-03 16:51 - 2022-08-03 16:51 - 002641669 _____ C:\Users\romai\Downloads\conditions-generales.pdf 2022-08-03 16:06 - 2022-08-03 16:06 - 004821577 _____ C:\Users\romai\Downloads\videoplayback.mp4 2022-08-02 20:31 - 2022-08-02 20:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roland 2022-08-02 20:31 - 2022-08-02 20:31 - 000000000 ____D C:\Program Files\Roland 2022-08-01 17:16 - 2022-08-02 16:24 - 000000000 ____D C:\Users\romai\AppData\Roaming\vlc 2022-08-01 17:15 - 2022-08-01 17:15 - 000000923 _____ C:\Users\Public\Desktop\VLC media player.lnk 2022-08-01 17:15 - 2022-08-01 17:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2022-08-01 17:15 - 2022-08-01 17:15 - 000000000 ____D C:\Program Files\VideoLAN 2022-08-01 17:14 - 2022-08-01 17:15 - 043524776 _____ C:\Users\romai\Downloads\vlc-3.0.17.4-win64.exe 2022-08-01 11:48 - 2022-08-01 11:48 - 000707502 _____ C:\Users\romai\Downloads\1-s2.0-S1766731318300323-am.pdf 2022-07-31 17:00 - 2022-07-31 17:00 - 263591621 _____ C:\Users\romai\Downloads\drive-download-20220731T150006Z-001.zip 2022-07-31 17:00 - 2022-07-31 17:00 - 000000000 ____D C:\Users\romai\Downloads\drive-download-20220731T150006Z-001 2022-07-31 10:30 - 2022-07-31 10:30 - 330141028 _____ C:\Users\romai\Downloads\France Culture - George Brassens.mp4 2022-07-30 15:32 - 2022-07-30 15:32 - 312469262 _____ C:\Users\romai\Downloads\Entretien avec Georges Brassens.mp4 2022-07-30 15:18 - 2022-07-30 15:18 - 005652066 _____ C:\Users\romai\Downloads\20220730_INV.pdf 2022-07-29 23:31 - 2022-07-29 23:31 - 000458389 _____ C:\Users\romai\Downloads\site fhl rehab2.pdf 2022-07-28 17:37 - 2022-07-28 17:37 - 047940838 _____ C:\Users\romai\Downloads\KINEWBIE 8 _ COMMENT RENFORCER SON LONG FLECHISSEUR DE L'HALLUX EFFICACEMENT.mp4 2022-07-28 17:29 - 2022-07-28 17:29 - 111742580 _____ C:\Users\romai\Downloads\brel.mp4 2022-07-24 18:42 - 2022-07-24 18:42 - 000033707 _____ C:\Users\romai\Desktop\1658309130.jpeg 2022-07-23 08:49 - 2022-07-23 08:49 - 005033392 _____ C:\Users\romai\Downloads\20220723_INV.pdf 2022-07-21 17:42 - 2022-07-21 17:42 - 004588175 _____ C:\Users\romai\Downloads\Carnet5recettes.pdf 2022-07-21 15:35 - 2022-07-21 15:35 - 000082396 _____ C:\Users\romai\Downloads\ACFrOgDaO8igTsvhsghiqqCQSH6vuQzwHQsTvdMQePFDp38I2N20-YdKUi3RAmsnon8k3nwZmyAEwc8zUp3C1sy_o0L_hezCLnMfa-JfAH_ZMD7VTRz5aMaUjr5qVjXefPEW_hLKyumiSvl5Mt56.pdf 2022-07-21 15:08 - 2022-07-21 15:08 - 078726197 _____ C:\Users\romai\Downloads\La PÂTE À CHOUX Inratable - Recette Facile.mp4 2022-07-21 09:47 - 2022-07-21 09:47 - 000151512 _____ C:\Users\romai\Downloads\ad12afa4-5e4a-4bf6-a792-3ac9e9bacefe.pdf 2022-07-21 09:41 - 2022-07-21 09:41 - 000142296 _____ C:\Users\romai\Downloads\AttestationDroits.pdf 2022-07-20 14:55 - 2022-07-20 14:55 - 014702799 _____ C:\Users\romai\Downloads\À_donf_Dicionário_de_gírias,_neologismos,_coloqui_2620550_(z-lib.org).pdf 2022-07-19 17:13 - 2022-07-19 17:13 - 007586958 _____ C:\Users\romai\Downloads\20220716_INV.pdf 2022-07-19 17:13 - 2022-07-19 17:13 - 006050982 _____ C:\Users\romai\Downloads\20220709_INV.pdf 2022-07-18 16:54 - 2022-07-18 16:55 - 093929603 _____ C:\Users\romai\Downloads\Melodyne • Creating harmonies.mp4 2022-07-14 15:26 - 2022-07-14 15:26 - 000127288 _____ C:\Users\romai\Downloads\THERY_ROMAIN_2ddocPos.pdf 2022-07-13 09:43 - 2022-07-13 09:43 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-07-13 09:43 - 2022-07-13 09:43 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-07-12 18:40 - 2022-07-12 18:40 - 000057085 _____ C:\Users\romai\Desktop\Authorize.auz 2022-07-12 18:36 - 2022-07-12 18:36 - 000000871 _____ C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ableton Live 11 Suite.lnk 2022-07-11 22:52 - 2022-08-09 23:42 - 000000000 ____D C:\Users\romai\AppData\Roaming\Celemony Software GmbH 2022-07-11 22:52 - 2022-07-11 22:52 - 000000000 ____D C:\Users\romai\Documents\Celemony 2022-07-11 22:52 - 2022-07-11 22:52 - 000000000 ____D C:\ProgramData\Celemony Software GmbH 2022-07-11 22:23 - 2022-07-11 22:23 - 000001009 _____ C:\Users\romai\Desktop\Melodyne 5.lnk 2022-07-11 22:23 - 2022-07-11 22:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Celemony 2022-07-11 22:23 - 2022-07-11 22:23 - 000000000 ____D C:\Program Files\Common Files\Celemony 2022-07-11 22:23 - 2022-07-11 22:23 - 000000000 ____D C:\Program Files\Celemony 2022-07-11 22:00 - 2022-07-11 22:00 - 000000000 ____D C:\Users\romai\AppData\Local\OneDrive 2022-07-08 16:29 - 2022-07-02 02:44 - 000528784 _____ (Intel) C:\WINDOWS\system32\libvpl.dll 2022-07-08 16:29 - 2022-07-02 02:44 - 000468904 _____ (Intel) C:\WINDOWS\SysWOW64\libvpl.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 027958176 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 020682160 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 001979416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-07-08 16:29 - 2022-07-02 02:43 - 001979416 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-07-08 16:29 - 2022-07-02 02:43 - 001536024 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-07-08 16:29 - 2022-07-02 02:43 - 001536024 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-07-08 16:29 - 2022-07-02 02:43 - 001442008 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 001442008 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 001155288 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 001155288 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000966392 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000725112 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000609048 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000477592 _____ C:\WINDOWS\system32\ze_tracing_layer.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000468032 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000385448 _____ C:\WINDOWS\system32\ze_loader.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000366008 _____ C:\WINDOWS\SysWOW64\IntelControlLib32.dll 2022-07-08 16:29 - 2022-07-02 02:43 - 000151448 _____ C:\WINDOWS\system32\ze_validation_layer.dll 2022-07-08 16:29 - 2022-07-02 02:41 - 000251704 _____ C:\WINDOWS\system32\ControlLib.dll 2022-07-08 16:29 - 2022-07-02 02:41 - 000204336 _____ C:\WINDOWS\SysWOW64\ControlLib32.dll 2022-07-08 16:29 - 2022-07-02 02:41 - 000204336 _____ C:\WINDOWS\system32\ControlLib32.dll 2022-07-08 10:05 - 2022-07-08 10:05 - 052076760 _____ (Focusrite Audio Engineering Ltd. ) C:\Users\romai\Downloads\Focusrite Control - 3.11.0.1983 (1).exe 2022-07-07 18:01 - 2022-07-07 18:01 - 000000000 __HDC C:\ProgramData\{310BCCC6-6E19-4C59-BB14-0FDDBEB59A46} 2022-07-07 18:00 - 2022-07-07 18:00 - 000000000 __HDC C:\ProgramData\{EC4DA036-6279-427E-A4CB-1FB3D28EFFF8} 2022-07-07 18:00 - 2022-07-07 18:00 - 000000000 __HDC C:\ProgramData\{CF8DBD9D-2EFD-44F7-8D23-93B5C27D06D7} 2022-07-07 17:52 - 2022-07-07 17:52 - 000000000 __HDC C:\ProgramData\{C12CD7AC-C96F-4619-9C53-A571B1811EF0} 2022-07-07 17:52 - 2022-07-07 17:52 - 000000000 __HDC C:\ProgramData\{87B07371-6F8D-47A7-A146-4C43FE4FA807} 2022-07-07 17:49 - 2022-07-07 17:49 - 000000000 __HDC C:\ProgramData\{E1E74949-A174-45D7-8F36-06A25EC649F6} 2022-07-07 17:45 - 2022-07-07 17:45 - 000000000 __HDC C:\ProgramData\{BAC28058-C4F4-43A0-8794-5B590B575B65} 2022-07-07 17:42 - 2022-07-07 17:42 - 000000000 __HDC C:\ProgramData\{FB9F9E83-B35E-45D9-9E25-32B31FF9447D} 2022-07-07 17:42 - 2022-07-07 17:42 - 000000000 __HDC C:\ProgramData\{E37ECEF4-D48B-4292-B749-BEF18FDAE0ED} 2022-07-07 17:42 - 2022-07-07 17:42 - 000000000 __HDC C:\ProgramData\{93EAA4DB-27EC-4331-A128-E3891121AA47} 2022-07-07 17:29 - 2022-07-07 17:29 - 000000000 __HDC C:\ProgramData\{5DC432FB-9A0B-4FE8-81DF-0578A66DB19F} 2022-07-07 17:07 - 2022-07-07 17:07 - 000000000 __HDC C:\ProgramData\{82BE5FE9-7F1F-47DC-91FC-D6F82D1C407C} 2022-07-07 16:43 - 2022-07-07 16:43 - 000000000 __HDC C:\ProgramData\{FC429E70-7635-46DA-AD4A-F20605FE0C40} 2022-07-07 16:43 - 2022-07-07 16:43 - 000000000 __HDC C:\ProgramData\{D72FA3A2-E7C3-4C67-82F6-B45EECFB326C} 2022-07-07 16:21 - 2022-07-07 16:21 - 000000000 __HDC C:\ProgramData\{9ADB143F-49AC-4714-80F8-67FEE6C38628} 2022-07-07 16:08 - 2022-07-07 16:08 - 000000000 __HDC C:\ProgramData\{5AB52131-79A2-413A-A6A9-189DC5AB8370} 2022-07-07 16:08 - 2022-07-07 16:08 - 000000000 __HDC C:\ProgramData\{587DED4E-E3F1-441D-A531-830E44DB42A7} 2022-07-07 16:08 - 2022-07-07 16:08 - 000000000 __HDC C:\ProgramData\{04C2F40B-C321-4335-AD82-71738D19AB95} 2022-07-07 15:53 - 2022-07-07 15:53 - 000000000 __HDC C:\ProgramData\{C0E6B2DD-D798-4A20-B66B-3F7061A9EF77} 2022-07-07 15:39 - 2022-07-07 15:39 - 000000000 __HDC C:\ProgramData\{D558B9FC-F549-4906-A5E2-8DFC407B1F82} 2022-07-07 15:39 - 2022-07-07 15:39 - 000000000 __HDC C:\ProgramData\{2A496AA8-2937-4D7D-AA52-B2ED59A19791} 2022-07-07 15:12 - 2022-07-07 15:12 - 000000000 __HDC C:\ProgramData\{F59A1EAD-A2E0-40AA-9CF5-2A2295BF02DF} 2022-07-07 15:12 - 2022-07-07 15:12 - 000000000 __HDC C:\ProgramData\{AC5E6B00-F1D3-4496-9D55-16B77C9B6980} 2022-07-07 15:11 - 2022-07-07 15:11 - 000000000 __HDC C:\ProgramData\{CAD5EAD9-2D7A-486C-B3BE-01C36FA6935E} 2022-07-07 15:11 - 2022-07-07 15:11 - 000000000 __HDC C:\ProgramData\{A50B6659-E47C-4FBF-A02E-1520D2101B64} 2022-07-07 15:11 - 2022-07-07 15:11 - 000000000 __HDC C:\ProgramData\{48DD7349-38A5-400E-B713-BB5601E12147} 2022-07-07 15:11 - 2022-07-07 15:11 - 000000000 __HDC C:\ProgramData\{34C05489-150C-4F7F-B496-DB44499C1BB7} 2022-07-07 14:59 - 2022-07-07 14:59 - 000000000 __HDC C:\ProgramData\{91B641C4-3B30-467E-B81E-A56724F91040} 2022-07-07 14:58 - 2022-07-07 14:58 - 000000000 __HDC C:\ProgramData\{BE45139D-E743-40B8-A96C-C10C2431F676} 2022-07-07 14:57 - 2022-07-07 14:57 - 000000000 __HDC C:\ProgramData\{1E4E039B-8C8A-4356-983D-DC1A0FAF5E60} 2022-07-07 14:56 - 2022-07-07 14:56 - 000001070 _____ C:\Users\Public\Desktop\Massive.lnk 2022-07-07 14:56 - 2022-07-07 14:56 - 000000000 __HDC C:\ProgramData\{30AD54D3-A311-4429-9183-5104D99EF5CA} 2022-07-07 14:55 - 2022-07-07 14:55 - 000000000 __HDC C:\ProgramData\{59D540AD-E95A-46A3-B1F9-1F3AEDC78415} 2022-07-07 14:51 - 2022-07-07 14:51 - 000000000 __HDC C:\ProgramData\{CEC995A7-EB21-453C-A490-F338176A5CF7} 2022-07-07 14:49 - 2022-07-07 14:49 - 000000000 __HDC C:\ProgramData\{3B24213E-238A-44FF-9025-6403032F6C70} 2022-07-07 14:45 - 2022-07-07 14:45 - 000000000 __HDC C:\ProgramData\{860EC03A-CE3A-4768-9965-D2BFDBC98019} 2022-07-07 14:44 - 2022-07-07 14:44 - 000001134 _____ C:\Users\Public\Desktop\Creator Tools.lnk 2022-07-07 14:44 - 2022-07-07 14:44 - 000000000 __HDC C:\ProgramData\{A8887533-E3C0-4E7B-BBBF-5DF1FCC9D690} 2022-07-07 14:44 - 2022-07-07 14:44 - 000000000 __HDC C:\ProgramData\{100F529D-71F2-4383-BC9C-510B98D2BEF1} 2022-07-07 14:43 - 2022-07-07 14:43 - 000000000 __HDC C:\ProgramData\{0727398D-58F6-4BFA-A956-468EDE88B062} 2022-07-06 23:05 - 2022-07-06 23:05 - 000000000 __HDC C:\ProgramData\{38D1C41F-04B7-40C7-BE93-EE57DCCD85C3} 2022-07-06 23:04 - 2022-07-06 23:04 - 000000000 __HDC C:\ProgramData\{D44450EA-2C8E-4516-82E3-7E1EFBD379FA} 2022-07-06 14:03 - 2022-08-10 19:14 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2022-07-06 14:03 - 2022-07-06 14:04 - 000003522 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2022-07-06 11:57 - 2022-07-06 11:57 - 000000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information 2022-07-06 11:57 - 2022-07-06 11:57 - 000000000 ___HD C:\ProgramData\CanonBJ 2022-07-06 11:57 - 2022-07-06 11:57 - 000000000 ____D C:\WINDOWS\system32\STRING 2022-07-06 11:57 - 2022-07-06 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2022-07-06 11:57 - 2022-07-06 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX350 series 2022-07-06 11:57 - 2022-07-06 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities 2022-07-06 11:57 - 2022-07-06 11:57 - 000000000 ____D C:\ProgramData\Canon IJ Network Tool 2022-07-06 11:57 - 2012-06-14 17:18 - 000366592 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNMNPPM.DLL 2022-07-06 11:57 - 2012-06-14 17:18 - 000359936 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6PPM.DLL 2022-07-06 11:57 - 2012-06-14 17:18 - 000039424 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6UI.DLL 2022-07-06 11:57 - 2011-01-06 13:07 - 000102400 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC350U.dll 2022-07-06 11:57 - 2009-10-19 16:29 - 000307200 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC350L.dll 2022-07-06 11:57 - 2009-06-23 14:37 - 000014592 _____ C:\WINDOWS\SysWOW64\CNC1742D.TBL 2022-07-06 11:57 - 2008-08-25 18:02 - 000015872 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNHMCA.dll 2022-07-06 11:56 - 2022-07-06 11:56 - 032964224 _____ C:\Users\romai\Downloads\mp68-win-mx350-1_06-ea24.exe 2022-07-06 11:56 - 2022-07-06 11:56 - 000000000 ___HD C:\Program Files\CanonBJ 2022-07-06 11:56 - 2012-03-14 05:00 - 000385024 _____ (CANON INC.) C:\WINDOWS\system32\CNMLMA6.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlSE.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlID.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlGR.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlFI.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlTR.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlTH.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlNO.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlKR.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlDK.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlAR.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002048 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlTW.DLL 2022-07-06 11:56 - 2009-11-25 15:56 - 000002048 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlCN.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlRU.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlPT.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlPL.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlNL.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlIT.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlFR.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlES.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlDE.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlHU.DLL 2022-07-06 11:56 - 2009-11-25 15:55 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlCZ.DLL 2022-07-06 11:56 - 2009-10-22 11:33 - 000343552 _____ (Canon Inc.) C:\WINDOWS\system32\CNCF2Ll.DLL 2022-07-06 11:56 - 2009-10-22 11:30 - 000182272 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFMSl.EXE 2022-07-06 11:56 - 2009-10-22 11:30 - 000003072 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlUS.DLL 2022-07-06 11:56 - 2009-10-22 11:30 - 000002560 _____ (Canon Inc.) C:\WINDOWS\system32\CNCFLlJP.DLL 2022-07-06 11:56 - 2009-09-10 09:00 - 000245760 _____ (CANON INC.) C:\WINDOWS\system32\CNMIUA6.DLL 2022-07-06 11:45 - 2022-07-06 11:57 - 000000000 ____D C:\Program Files (x86)\Canon 2022-07-06 11:44 - 2022-07-06 11:44 - 017192344 _____ C:\Users\romai\Downloads\mx350sosmwin120en.exe 2022-07-05 17:30 - 2022-07-05 17:30 - 000000000 ____D C:\Users\romai\AppData\Roaming\Macromedia 2022-07-05 17:30 - 2022-07-05 17:30 - 000000000 ____D C:\Users\romai\AppData\Local\NVIDIA 2022-07-05 17:29 - 2022-07-05 17:29 - 000002527 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2019.lnk 2022-07-05 17:29 - 2022-07-05 17:29 - 000001417 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2022-07-05 17:29 - 2022-07-05 17:29 - 000001405 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk 2022-07-05 17:17 - 2022-07-05 17:17 - 055399018 _____ C:\Users\romai\Downloads\KIM JONG BOOM V6 VOCAL UP 2db Video.wav 2022-07-05 17:17 - 2022-07-05 17:17 - 055398962 _____ C:\Users\romai\Downloads\KIM JONG BOOM V6 VOCAL UP 1db Video.wav 2022-07-05 17:17 - 2022-07-05 17:17 - 034021926 _____ C:\Users\romai\Downloads\KIM JONG BOOM V6 VOCAL UP 2db Plataformas.wav 2022-07-05 17:17 - 2022-07-05 17:17 - 034021898 _____ C:\Users\romai\Downloads\KIM JONG BOOM V6.wav 2022-07-05 17:17 - 2022-07-05 17:17 - 034021898 _____ C:\Users\romai\Downloads\KIM JONG BOOM V6 VOCAL UP 1db Plataformas.wav 2022-07-05 12:02 - 2022-07-05 12:02 - 000000000 ____D C:\Users\romai\Tracing 2022-07-04 21:11 - 2022-07-04 21:11 - 000000000 __HDC C:\ProgramData\{827DAE59-9E82-4B2B-A6EF-9196420D8AD7} 2022-07-04 20:40 - 2022-07-04 20:40 - 000000000 ____D C:\ProgramData\boost_interprocess 2022-07-04 19:37 - 2022-07-04 19:37 - 000000000 __HDC C:\ProgramData\{450D0D40-B9B8-46E9-8BA2-6CD8A1704EAB} 2022-07-04 19:31 - 2022-07-04 19:31 - 000000000 __HDC C:\ProgramData\{322DD5A9-463D-4877-80FE-D0833FFE1A84} 2022-07-04 19:21 - 2022-07-04 19:21 - 000000000 __HDC C:\ProgramData\{02490D6D-A774-44A6-9F72-6556CD099C21} 2022-07-04 19:20 - 2022-07-04 19:20 - 000000000 __HDC C:\ProgramData\{E58D9AFA-A3C9-438E-A8C4-AABA12ABB7FE} 2022-07-04 19:07 - 2022-07-04 19:07 - 000000000 __HDC C:\ProgramData\{C0C85DB7-6813-4653-B996-F8143E0BD00D} 2022-07-04 19:04 - 2022-07-04 19:04 - 000000000 __HDC C:\ProgramData\{306A1EF4-D27D-4F5A-BA93-F05B10576F40} 2022-07-04 19:03 - 2022-07-04 19:03 - 000000000 __HDC C:\ProgramData\{8ED13C89-71A0-4F80-A206-C2A9FA36EF6B} 2022-07-04 19:01 - 2022-07-04 19:01 - 000000000 __HDC C:\ProgramData\{B9128DCD-EAF1-4915-8EE4-29A858B9802C} 2022-07-04 18:45 - 2022-07-04 18:45 - 000000000 __HDC C:\ProgramData\{B84A83FD-E0E7-4327-A608-33BCDBC470D4} 2022-07-04 18:08 - 2022-07-04 18:08 - 000000000 __HDC C:\ProgramData\{F42FBBF3-DBA4-4185-A424-FB16AEF7B2F1} 2022-07-04 18:05 - 2022-07-04 18:05 - 000001164 _____ C:\Users\Public\Desktop\Komplete Kontrol.lnk 2022-07-04 18:05 - 2022-07-04 18:05 - 000000000 __HDC C:\ProgramData\{F10DE1DA-6ACE-44D1-AF1C-5ED9E83CB9D0} 2022-07-04 18:05 - 2022-07-04 18:05 - 000000000 __HDC C:\ProgramData\{C0DE0020-B144-40AE-AA18-38A042DD069F} 2022-07-04 18:05 - 2022-07-04 18:05 - 000000000 __HDC C:\ProgramData\{73631698-31A0-419C-B151-F478AEBC136A} 2022-07-04 18:05 - 2022-07-04 18:05 - 000000000 __HDC C:\ProgramData\{6DCF15A8-8EDC-4C3D-AC0E-07B1E76BCB0A} 2022-07-04 18:05 - 2022-07-04 18:05 - 000000000 ____D C:\Program Files\Common Files\Steinberg 2022-07-04 18:04 - 2022-07-04 18:04 - 000001174 _____ C:\Users\Public\Desktop\Controller Editor.lnk 2022-07-04 18:04 - 2022-07-04 18:04 - 000000000 __HDC C:\ProgramData\{CC4289B5-339B-4B26-A058-EC985EE92BA6} 2022-07-04 18:04 - 2022-07-04 18:04 - 000000000 __HDC C:\ProgramData\{39CB0635-4278-4FBE-BCED-E8D225DBE582} 2022-07-04 18:04 - 2022-07-04 18:04 - 000000000 __HDC C:\ProgramData\{2A5A2961-720B-4F3D-BAC5-D9331BBF2A5A} 2022-07-04 18:04 - 2022-07-04 18:04 - 000000000 ____D C:\ProgramData\Bome Software 2022-07-04 18:04 - 2018-05-16 17:23 - 000056376 _____ (Bome Software GmbH & Co. KG) C:\WINDOWS\system32\Drivers\bomebus.sys 2022-07-04 18:04 - 2018-05-16 14:57 - 000207416 _____ (Bome Software GmbH & Co. KG) C:\WINDOWS\system32\bmidilib.dll 2022-07-04 18:04 - 2018-05-16 14:57 - 000102456 _____ (Bome Software GmbH & Co. KG) C:\WINDOWS\system32\bmidilib2.dll 2022-07-04 18:04 - 2018-05-16 14:55 - 000182328 _____ (Bome Software GmbH & Co. KG) C:\WINDOWS\SysWOW64\bmidilib.dll 2022-07-04 18:04 - 2018-05-16 14:54 - 000089144 _____ (Bome Software GmbH & Co. KG) C:\WINDOWS\SysWOW64\bmidilib2.dll 2022-07-04 17:49 - 2022-07-04 17:49 - 000001070 _____ C:\Users\Public\Desktop\Kontakt.lnk 2022-07-04 17:49 - 2022-07-04 17:49 - 000000000 __HDC C:\ProgramData\{7274A0FE-FB8C-4441-AB02-027346252DB4} 2022-07-04 17:48 - 2022-07-04 17:48 - 000000000 __HDC C:\ProgramData\{CD18CA36-46CB-4514-A649-4877394909E9} 2022-07-04 17:45 - 2022-07-04 17:45 - 000000000 __HDC C:\ProgramData\{8288B326-E948-41A3-A5D8-0EF3882A7670} 2022-07-04 17:27 - 2022-07-04 17:27 - 000000000 ____D C:\Users\romai\AppData\Local\Guitar Rig 6 2022-07-04 17:27 - 2022-07-04 17:27 - 000000000 ____D C:\Users\Public\Documents\NI Resources 2022-07-04 17:26 - 2022-07-04 17:26 - 000000000 __HDC C:\ProgramData\{9EBA9F33-EC88-4241-908A-418DF4B9B5B6} 2022-07-04 17:17 - 2022-07-04 17:17 - 000000000 __HDC C:\ProgramData\{329E631D-768B-47E8-A555-E93AA4951459} 2022-07-04 17:09 - 2022-07-04 17:09 - 000000000 __HDC C:\ProgramData\{C5172978-56D4-4B6E-AFAB-EF18C3DCF399} 2022-07-04 17:06 - 2022-07-04 17:06 - 000001124 _____ C:\Users\Public\Desktop\Guitar Rig 6.lnk 2022-07-04 17:06 - 2022-07-04 17:06 - 000000000 __HDC C:\ProgramData\{2C161234-84D1-49F9-8D33-857998FD3BA7} 2022-07-04 17:05 - 2022-07-11 22:23 - 000000000 ____D C:\Program Files\Common Files\VST3 2022-07-04 17:05 - 2022-07-04 17:05 - 000000000 ____D C:\Program Files\Common Files\Avid 2022-07-04 16:56 - 2022-07-07 16:43 - 000000000 ____D C:\Program Files\Native Instruments 2022-07-04 16:56 - 2022-07-07 14:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments 2022-07-04 16:56 - 2022-07-04 18:05 - 000000000 ____D C:\ProgramData\Native Instruments 2022-07-04 16:56 - 2022-07-04 16:56 - 000001134 _____ C:\Users\Public\Desktop\Native Access.lnk 2022-07-04 16:56 - 2022-07-04 16:56 - 000000000 __HDC C:\ProgramData\{9A436DDE-4815-441B-B01D-D96E9AF2EE93} 2022-07-04 16:54 - 2022-07-04 16:54 - 075834037 _____ C:\Users\romai\Downloads\Native_Access_Installer_211108 (1).zip 2022-07-04 16:54 - 2022-07-04 16:54 - 000000000 ____D C:\Users\romai\Downloads\Native_Access_Installer_211108 (1) 2022-07-02 19:45 - 2022-07-18 22:39 - 000000000 ____D C:\ProgramData\Focusrite 2022-07-02 19:45 - 2022-07-02 19:45 - 000000805 _____ C:\Users\Public\Desktop\Focusrite Control.lnk 2022-07-02 19:45 - 2022-07-02 19:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite Drivers 2022-07-02 19:45 - 2022-07-02 19:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite 2022-07-02 19:45 - 2022-07-02 19:45 - 000000000 ____D C:\Program Files\Focusrite 2022-07-02 19:45 - 2022-05-20 14:16 - 000197280 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUsb.sys 2022-07-02 19:45 - 2022-05-20 14:16 - 000110864 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUsbSwRoot.sys 2022-07-02 19:45 - 2022-05-20 14:16 - 000105192 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusritePCIeSwRoot.sys 2022-07-02 19:45 - 2022-05-20 14:16 - 000097952 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUsbAudio.sys 2022-07-02 19:45 - 2022-05-20 14:16 - 000053392 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUsbMidi.sys 2022-07-02 19:45 - 2022-05-20 13:54 - 000110144 _____ C:\WINDOWS\system32\FocusritePal64.dll 2022-07-02 19:45 - 2022-05-20 13:54 - 000099392 _____ C:\WINDOWS\SysWOW64\FocusritePal32.dll 2022-07-02 19:44 - 2022-07-02 19:45 - 052076760 _____ (Focusrite Audio Engineering Ltd. ) C:\Users\romai\Downloads\Focusrite Control - 3.11.0.1983.exe 2022-07-02 19:13 - 2022-07-07 18:01 - 000000000 ____D C:\Program Files\Common Files\Native Instruments 2022-07-02 19:13 - 2022-07-02 19:13 - 000000000 ____D C:\Users\Public\Documents\Native Instruments 2022-07-02 19:12 - 2022-07-11 22:51 - 000000000 ____D C:\Users\romai\Documents\Native Instruments 2022-07-02 19:12 - 2022-07-11 22:51 - 000000000 ____D C:\Users\romai\AppData\Local\Native Instruments 2022-07-02 19:12 - 2022-07-02 19:12 - 000000000 ____D C:\Users\romai\AppData\Roaming\Native Instruments 2022-07-02 19:12 - 2022-07-02 19:12 - 000000000 ____D C:\Users\romai\AppData\Local\cache 2022-07-02 19:08 - 2022-08-10 18:54 - 000000000 ___RD C:\Users\romai\Desktop\sauvegarde fichier ableton sur C car plus rapide 2022-07-02 18:43 - 2022-07-02 18:43 - 000000000 ____D C:\Users\romai\AppData\Local\PackageAware 2022-07-02 18:39 - 2022-07-02 18:39 - 075834037 _____ C:\Users\romai\Downloads\Native_Access_Installer_211108.zip 2022-07-02 18:39 - 2022-07-02 18:39 - 000000000 ____D C:\Users\romai\Downloads\Native_Access_Installer_211108 2022-07-02 18:38 - 2022-07-02 18:38 - 000000929 _____ C:\Users\romai\Downloads\Celemony Melodyne 5 Studio v5.0.0.048-RET.torrent 2022-07-02 17:36 - 2022-07-02 17:36 - 000001080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign 2019.lnk 2022-07-02 17:34 - 2022-07-05 17:28 - 000000000 ____D C:\Program Files (x86)\Adobe 2022-07-02 17:12 - 2022-07-02 17:12 - 000000000 ____D C:\Users\romai\AppData\Roaming\WinRAR 2022-07-02 17:12 - 2022-07-02 17:12 - 000000000 ____D C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-07-02 17:12 - 2022-07-02 17:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-07-02 17:12 - 2022-07-02 17:12 - 000000000 ____D C:\Program Files\WinRAR 2022-07-02 17:08 - 2022-07-02 17:09 - 003581328 _____ (Alexander Roshal) C:\Users\romai\Downloads\winrar-x64-611fr.exe 2022-07-02 17:04 - 2022-07-02 17:04 - 000000000 ____D C:\Users\romai\Documents\Max 8 2022-07-02 17:04 - 2022-07-02 17:04 - 000000000 ____D C:\Users\romai\AppData\Roaming\Cycling '74 2022-07-02 17:04 - 2022-07-02 17:04 - 000000000 ____D C:\ProgramData\Max 8 2022-07-02 17:03 - 2022-07-04 17:07 - 000000000 ____D C:\Users\romai\AppData\Roaming\Ableton 2022-07-02 17:03 - 2022-07-02 17:04 - 000000000 ____D C:\Users\romai\Documents\Ableton 2022-07-02 17:03 - 2022-07-02 17:03 - 000000000 ____D C:\Users\romai\AppData\Local\Ableton 2022-07-02 16:59 - 2022-07-12 18:39 - 000000290 __RSH C:\ProgramData\ntuser.pol 2022-07-02 16:59 - 2022-07-02 16:59 - 000000000 ____D C:\Program Files\Common Files\Propellerhead Software 2022-07-02 16:58 - 2022-07-12 18:37 - 000000000 ____D C:\ProgramData\Ableton 2022-07-02 16:36 - 2022-07-02 16:36 - 000029592 _____ (WireGuard LLC) C:\WINDOWS\system32\Drivers\wintun.sys 2022-07-01 21:38 - 2022-07-01 21:38 - 006947135 _____ C:\Users\romai\Downloads\Investir-2530.pdf 2022-07-01 16:22 - 2022-08-10 18:53 - 000000000 ____D C:\Users\romai\AppData\Roaming\WhatsApp 2022-07-01 16:22 - 2022-08-10 16:41 - 000000000 ____D C:\Users\romai\AppData\Local\WhatsApp 2022-07-01 16:22 - 2022-07-01 16:22 - 000002210 _____ C:\Users\romai\Desktop\WhatsApp.lnk 2022-07-01 16:22 - 2022-07-01 16:22 - 000000000 ____D C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2022-07-01 16:22 - 2022-07-01 16:22 - 000000000 ____D C:\Users\romai\AppData\Local\SquirrelTemp 2022-07-01 15:57 - 2022-07-01 15:58 - 152638648 _____ (WhatsApp) C:\Users\romai\Downloads\WhatsAppSetup.exe 2022-07-01 14:54 - 2022-07-01 14:54 - 000000028 ____H C:\.GamingRoot 2022-07-01 14:54 - 2022-07-01 14:54 - 000000000 ____D C:\XboxGames 2022-07-01 14:53 - 2022-07-01 14:53 - 000000000 ____D C:\Program Files (x86)\Windows Kits 2022-07-01 14:53 - 2022-07-01 14:53 - 000000000 ____D C:\Program Files (x86)\Microsoft GameInput 2022-07-01 14:08 - 2022-07-01 14:08 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-06-30 15:28 - 2022-06-30 15:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2022-06-30 14:09 - 2022-08-10 15:40 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-06-29 18:17 - 2022-06-29 18:17 - 000000000 ____D C:\Users\romai\AppData\Local\IsolatedStorage 2022-06-29 09:55 - 2022-08-10 18:54 - 000000000 ___RD C:\Users\romai\Documents\doc ancien pc 2022-06-29 08:54 - 2022-06-29 08:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2022-06-29 08:53 - 2022-08-10 19:01 - 001709664 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-06-29 08:53 - 2022-06-29 08:53 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2022-06-29 08:52 - 2022-06-29 08:52 - 000000020 ___SH C:\Users\romai\ntuser.ini 2022-06-29 00:44 - 2022-06-29 00:45 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2022-06-29 00:43 - 2022-06-29 00:44 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2022-06-29 00:43 - 2022-06-29 00:43 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2022-06-29 00:42 - 2022-06-29 00:42 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2022-06-29 00:40 - 2022-06-29 00:40 - 000196096 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\SysWOW64\l3codecp.acm 2022-06-29 00:39 - 2022-06-29 00:39 - 002550832 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 002125824 _____ C:\WINDOWS\system32\dwmscene.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 002080992 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Bubbles.scr 2022-06-29 00:39 - 2022-06-29 00:39 - 000774144 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000727576 _____ C:\WINDOWS\system32\TextShaping.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000617648 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000614400 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2022-06-29 00:39 - 2022-06-29 00:39 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2022-06-29 00:39 - 2022-06-29 00:39 - 000460800 _____ C:\WINDOWS\SysWOW64\SettingSyncDownloadHelper.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2022-06-29 00:39 - 2022-06-29 00:39 - 000425984 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000372736 _____ C:\WINDOWS\system32\hwreqchk.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000356352 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2022-06-29 00:39 - 2022-06-29 00:39 - 000339968 _____ C:\WINDOWS\system32\pku2u.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000335872 _____ C:\WINDOWS\system32\Windows.Internal.UI.Dialogs.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000299008 _____ C:\WINDOWS\system32\EsclScan.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000286720 _____ C:\WINDOWS\system32\AggregatorHost.exe 2022-06-29 00:39 - 2022-06-29 00:39 - 000267264 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Dialogs.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssText3d.scr 2022-06-29 00:39 - 2022-06-29 00:39 - 000247808 _____ C:\WINDOWS\SysWOW64\pku2u.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000221184 _____ C:\WINDOWS\SysWOW64\Microsoft.Internal.FrameworkUdk.System.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000208896 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000208896 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codecp.acm 2022-06-29 00:39 - 2022-06-29 00:39 - 000180224 _____ C:\WINDOWS\system32\EsclProtocol.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000180224 _____ C:\WINDOWS\system32\CloudExperienceHostRedirection.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Ribbons.scr 2022-06-29 00:39 - 2022-06-29 00:39 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mystify.scr 2022-06-29 00:39 - 2022-06-29 00:39 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotesp.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000121344 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2022-06-29 00:39 - 2022-06-29 00:39 - 000099560 _____ C:\WINDOWS\system32\wow64con.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000098304 _____ C:\WINDOWS\system32\sstpcfg.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remotesp.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000086016 _____ C:\WINDOWS\system32\printticketvalidation.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000086016 _____ C:\WINDOWS\system32\CredProvCommonCore.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000079192 _____ C:\WINDOWS\system32\Drivers\NDKPerf.sys 2022-06-29 00:39 - 2022-06-29 00:39 - 000077824 _____ C:\WINDOWS\system32\runexehelper.exe 2022-06-29 00:39 - 2022-06-29 00:39 - 000077824 _____ C:\WINDOWS\system32\APMonUI.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\format.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidphone.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000051712 _____ C:\WINDOWS\SysWOW64\CredProvCommonCore.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\more.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\format.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000042752 _____ C:\WINDOWS\system32\wow64base.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000041594 _____ C:\WINDOWS\SysWOW64\ctac.json 2022-06-29 00:39 - 2022-06-29 00:39 - 000040960 _____ C:\WINDOWS\system32\WsdProviderUtil.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000040960 _____ C:\WINDOWS\system32\prxyqry.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kmddsp.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000038760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msgsm32.acm 2022-06-29 00:39 - 2022-06-29 00:39 - 000036864 _____ C:\WINDOWS\system32\umpodev.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000034112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imaadp32.acm 2022-06-29 00:39 - 2022-06-29 00:39 - 000033568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msadp32.acm 2022-06-29 00:39 - 2022-06-29 00:39 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrnsave.scr 2022-06-29 00:39 - 2022-06-29 00:39 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hidphone.tsp 2022-06-29 00:39 - 2022-06-29 00:39 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000024576 _____ C:\WINDOWS\system32\nrtapi.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\more.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000019456 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com 2022-06-29 00:39 - 2022-06-29 00:39 - 000013824 _____ C:\WINDOWS\SysWOW64\prxyqry.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000009522 _____ C:\WINDOWS\system32\ResPriUHMImageList 2022-06-29 00:39 - 2022-06-29 00:39 - 000009522 _____ C:\WINDOWS\system32\ResPriImageList 2022-06-29 00:39 - 2022-06-29 00:39 - 000009522 _____ C:\WINDOWS\system32\ResPriHMImageList 2022-06-29 00:39 - 2022-06-29 00:39 - 000009402 _____ C:\WINDOWS\system32\ResPriHMImageListLowCost 2022-06-29 00:39 - 2022-06-29 00:39 - 000008964 _____ C:\WINDOWS\system32\ResPriLMImageList 2022-06-29 00:39 - 2022-06-29 00:39 - 000008870 _____ C:\WINDOWS\system32\ResPriImageListLowCost 2022-06-29 00:39 - 2022-06-29 00:39 - 000006656 _____ C:\WINDOWS\SysWOW64\nrtapi.dll 2022-06-29 00:39 - 2022-06-29 00:39 - 000003366 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml 2022-06-29 00:39 - 2022-06-29 00:39 - 000003366 _____ C:\WINDOWS\system32\AppxProvisioning.xml 2022-06-29 00:38 - 2022-06-29 00:38 - 000643072 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll 2022-06-29 00:38 - 2022-06-29 00:38 - 000311296 _____ C:\WINDOWS\system32\Microsoft.Internal.FrameworkUdk.System.dll 2022-06-29 00:38 - 2022-06-29 00:38 - 000286720 _____ C:\WINDOWS\system32\Microsoft.Bluetooth.Audio.dll 2022-06-29 00:38 - 2022-06-29 00:38 - 000258048 _____ C:\WINDOWS\system32\CoreMas.dll 2022-06-29 00:38 - 2022-06-29 00:38 - 000210432 _____ C:\WINDOWS\system32\CloudIdWxhExtension.dll 2022-06-29 00:38 - 2022-06-29 00:38 - 000208896 _____ C:\WINDOWS\system32\IHDS.dll 2022-06-29 00:38 - 2022-06-29 00:38 - 000172032 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2022-06-29 00:38 - 2022-06-29 00:38 - 000167936 _____ C:\WINDOWS\system32\TpmTool.exe 2022-06-29 00:38 - 2022-06-29 00:38 - 000067528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msgsm32.acm 2022-06-29 00:38 - 2022-06-29 00:38 - 000063392 _____ (Microsoft Corporation) C:\WINDOWS\system32\imaadp32.acm 2022-06-29 00:38 - 2022-06-29 00:38 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrnsave.scr 2022-06-29 00:38 - 2022-06-29 00:38 - 000059264 _____ (Microsoft Corporation) C:\WINDOWS\system32\msadp32.acm 2022-06-29 00:38 - 2022-06-29 00:38 - 000041594 _____ C:\WINDOWS\system32\ctac.json 2022-06-29 00:38 - 2022-06-29 00:38 - 000032768 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2022-06-28 23:48 - 2022-08-10 18:54 - 000003112 _____ C:\WINDOWS\system32\Tasks\NahimicTask32 2022-06-28 23:48 - 2022-08-10 18:54 - 000003092 _____ C:\WINDOWS\system32\Tasks\NahimicTask64 2022-06-28 23:48 - 2022-08-10 18:54 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-06-28 23:48 - 2022-08-10 13:51 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-06-28 23:48 - 2022-08-10 13:51 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-06-28 23:48 - 2022-08-09 18:41 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-06-28 23:48 - 2022-08-07 12:51 - 000004784 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeShadowStackRollbackTask 2022-06-28 23:48 - 2022-07-26 18:03 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3166150232-4121134216-1366025647-1003 2022-06-28 23:48 - 2022-07-26 18:03 - 000003356 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3166150232-4121134216-1366025647-1003 2022-06-28 23:48 - 2022-06-28 23:48 - 000017148 _____ C:\WINDOWS\diagwrn.xml 2022-06-28 23:48 - 2022-06-28 23:48 - 000017148 _____ C:\WINDOWS\diagerr.xml 2022-06-28 23:48 - 2022-06-28 23:48 - 000003594 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{8AD1F887-0F8A-4901-B1A2-65656347EC32} 2022-06-28 23:48 - 2022-06-28 23:48 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000003370 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{91DEF814-3F30-42B7-BBEC-46D6583E5588} 2022-06-28 23:48 - 2022-06-28 23:48 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3166150232-4121134216-1366025647-500 2022-06-28 23:48 - 2022-06-28 23:48 - 000002826 _____ C:\WINDOWS\system32\Tasks\OneDC_Updater 2022-06-28 23:48 - 2022-06-28 23:48 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-06-28 23:48 - 2022-06-28 23:48 - 000002612 _____ C:\WINDOWS\system32\Tasks\Norton WSC Integration 2022-06-28 23:48 - 2022-06-28 23:48 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc64Run 2022-06-28 23:48 - 2022-06-28 23:48 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc32Run 2022-06-28 23:48 - 2022-06-28 23:48 - 000002266 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - LEDKeeper2_Host 2022-06-28 23:48 - 2022-06-28 23:48 - 000002184 _____ C:\WINDOWS\system32\Tasks\OmApSvcBroker 2022-06-28 23:48 - 2021-11-05 08:09 - 000002854 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-455745644-2512525906-3043477250-500 2022-06-28 23:48 - 2020-12-05 20:25 - 000003394 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3486284840-3969262120-4115545526-500 2022-06-28 23:48 - 2020-11-19 09:38 - 000003394 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3538912014-3826891016-3662973680-500 2022-06-28 23:46 - 2022-07-05 12:02 - 000000000 ____D C:\Users\romai 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Voisinage réseau 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Voisinage d'impression 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Modèles 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Mes documents 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Menu Démarrer 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Documents\Mes vidéos 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Documents\Mes images 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\Documents\Ma musique 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2022-06-28 23:46 - 2022-06-28 23:46 - 000000000 _SHDL C:\Users\romai\AppData\Local\Historique 2022-06-28 23:46 - 2021-06-05 14:04 - 000001281 _____ C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools.lnk 2022-06-28 23:46 - 2021-06-05 14:04 - 000000407 _____ C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\File Explorer.lnk 2022-06-28 23:45 - 2022-08-10 18:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-06-28 23:45 - 2022-08-10 16:23 - 000469528 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-06-28 23:15 - 2022-06-28 23:15 - 005789248 _____ C:\Users\romai\Downloads\Investir-2529.pdf 2022-06-28 22:53 - 2022-08-09 14:25 - 000000000 ____D C:\Users\romai\AppData\Local\Downloaded Installations 2022-06-28 22:53 - 2022-06-28 22:53 - 000000000 ___HD C:\Users\romai\.tresorit 2022-06-28 22:53 - 2022-04-07 03:43 - 000012544 _____ (Callback Technologies, Inc. - www.callback.com) C:\WINDOWS\system32\cbfsevtmsg.dll 2022-06-28 22:53 - 2022-04-07 03:42 - 000281344 _____ (Callback Technologies, Inc. - www.callback.com) C:\WINDOWS\system32\cbfsShellHelper20.dll 2022-06-28 22:53 - 2022-04-07 03:42 - 000226048 _____ (Callback Technologies, Inc. - www.callback.com) C:\WINDOWS\SysWOW64\cbfsShellHelper20.dll 2022-06-28 22:53 - 2022-04-07 00:31 - 000449064 _____ (Callback Technologies, Inc. - www.callback.com) C:\WINDOWS\system32\Drivers\cbfs20.sys 2022-06-28 22:52 - 2022-08-09 14:25 - 000000000 ____D C:\Users\romai\AppData\Local\Tresorit 2022-06-28 22:52 - 2022-06-28 23:46 - 000000000 ____D C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tresorit 2022-06-28 22:52 - 2022-06-28 22:56 - 000000000 ____D C:\Users\romai\My Tresors 2022-06-28 22:52 - 2022-06-28 22:52 - 094312472 _____ (Tresorit) C:\Users\romai\Downloads\Tresorit_for_(emailromainthery@gmail.com)_1.exe 2022-06-28 22:52 - 2022-06-28 22:52 - 000002327 _____ C:\Users\romai\Desktop\Tresorit.lnk 2022-06-28 21:24 - 2022-06-28 21:24 - 000097260 _____ C:\Users\romai\Downloads\TektonP2.otf 2022-06-28 17:58 - 2022-08-10 18:59 - 000000000 ____D C:\Users\romai\AppData\Local\CrashDumps 2022-06-28 16:34 - 2022-06-28 16:34 - 000000000 ____D C:\Users\romai\AppData\Local\SolidDocuments 2022-06-28 16:34 - 2022-06-28 16:34 - 000000000 ____D C:\Users\romai\.ms-ad 2022-06-28 16:21 - 2022-08-09 18:41 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2022-06-28 16:21 - 2022-08-09 18:41 - 000002068 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk 2022-06-28 16:21 - 2022-07-05 17:29 - 000000000 ____D C:\Program Files\Adobe 2022-06-28 16:20 - 2022-07-05 17:29 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-06-28 16:20 - 2022-07-02 18:39 - 000000000 ____D C:\Users\romai\AppData\Roaming\qBittorrent 2022-06-28 16:20 - 2022-06-28 16:21 - 000000000 ____D C:\Users\romai\AppData\Local\qBittorrent 2022-06-28 14:57 - 2022-07-05 17:30 - 000000000 ____D C:\ProgramData\Adobe 2022-06-28 14:57 - 2022-06-28 14:57 - 000000000 ____D C:\Users\romai\AppData\Local\CEF 2022-06-28 14:56 - 2022-07-06 11:34 - 000000000 ____D C:\Users\romai\AppData\Local\Adobe 2022-06-28 14:56 - 2022-06-28 16:35 - 000000000 ____D C:\Users\romai\AppData\LocalLow\Adobe 2022-06-28 14:55 - 2022-06-28 14:55 - 029988680 _____ (The qBittorrent project) C:\Users\romai\Downloads\qbittorrent_4.4.3.1_x64_setup.exe 2022-06-28 14:32 - 2022-06-28 14:32 - 000000000 ____D C:\Users\romai\Documents\Zoom 2022-06-28 14:24 - 2022-08-09 18:28 - 000000000 ____D C:\Users\romai\AppData\Local\NordVPN 2022-06-28 14:24 - 2022-08-09 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NordSec 2022-06-28 14:24 - 2022-07-02 16:36 - 000000000 ____D C:\ProgramData\NordVPN 2022-06-28 14:24 - 2022-06-28 14:24 - 000000718 _____ C:\Users\romai\Desktop\NordVPN.lnk 2022-06-28 14:24 - 2022-02-22 11:52 - 000044928 _____ (TEFINCOM S.A.) C:\WINDOWS\system32\Drivers\nordlwf.sys 2022-06-28 14:23 - 2022-08-09 15:22 - 000000000 ____D C:\Program Files\NordUpdater 2022-06-28 14:23 - 2022-06-28 14:23 - 000000000 ____D C:\Program Files (x86)\NordVPN network TAP 2022-06-28 14:23 - 2022-04-29 11:04 - 000042704 _____ (TEFINCOM S.A.) C:\WINDOWS\Nord.Setup.dll 2022-06-28 14:22 - 2022-06-28 14:22 - 001794840 _____ (NordVPN ) C:\Users\romai\Downloads\NordVPNSetup.exe 2022-06-28 14:20 - 2022-06-28 14:20 - 000001938 _____ C:\Users\romai\Desktop\Zoom.lnk 2022-06-28 14:18 - 2022-06-28 23:47 - 000000000 ____D C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2022-06-28 14:18 - 2022-06-28 14:18 - 048540288 _____ (Zoom Video Communications, Inc.) C:\Users\romai\Downloads\ZoomInstallerFull.exe 2022-06-28 14:18 - 2022-06-28 14:18 - 000000000 ____D C:\Users\romai\AppData\Roaming\Zoom 2022-06-28 14:18 - 2022-06-28 14:18 - 000000000 ____D C:\Users\romai\AppData\Local\Zoom 2022-06-28 14:16 - 2022-07-11 12:43 - 000000000 ___DC C:\WINDOWS\Panther 2022-06-28 14:13 - 2022-06-28 14:30 - 000000000 ____D C:\Users\romai\AppData\Local\Comms 2022-06-28 14:08 - 2022-08-10 20:13 - 000000000 ____D C:\Program Files (x86)\Google 2022-06-28 14:08 - 2022-08-09 19:13 - 000002252 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-06-28 14:08 - 2022-08-09 19:13 - 000002211 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-06-28 14:08 - 2022-06-28 14:14 - 000000000 ____D C:\Users\romai\AppData\Local\Google 2022-06-28 14:08 - 2022-06-28 14:08 - 000000000 ____D C:\Program Files\Google 2022-06-28 14:07 - 2022-06-28 14:07 - 001414600 _____ (Google LLC) C:\Users\romai\Downloads\ChromeSetup.exe 2022-06-28 14:07 - 2022-06-28 14:07 - 000000000 _____ C:\Users\romai\Downloads\Non confirmé 587629.crdownload 2022-06-28 13:59 - 2022-08-10 18:54 - 000000000 ___RD C:\Users\romai\OneDrive 2022-06-28 13:59 - 2022-08-06 09:16 - 000000000 ____D C:\Users\romai\AppData\Local\PlaceholderTileLogoFolder 2022-06-28 13:59 - 2022-06-28 13:59 - 000000000 ___HD C:\OneDriveTemp 2022-06-28 13:58 - 2022-07-20 14:47 - 000002393 _____ C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nahimic Companion.lnk 2022-06-28 13:58 - 2022-06-30 22:19 - 000000000 ____D C:\Users\romai\AppData\Local\NVIDIA Corporation 2022-06-28 13:58 - 2022-06-28 13:58 - 000000000 ____D C:\Users\romai\Documents\temp 2022-06-28 13:58 - 2022-06-28 13:58 - 000000000 ____D C:\Users\romai\AppData\Local\NhNotifSys 2022-06-28 13:57 - 2022-08-10 18:54 - 000000000 __SHD C:\Users\romai\IntelGraphicsProfiles 2022-06-28 13:57 - 2022-08-10 18:54 - 000000000 ____D C:\Users\romai\AppData\Local\Packages 2022-06-28 13:57 - 2022-08-08 16:31 - 000000000 ____D C:\Users\romai\AppData\Local\D3DSCache 2022-06-28 13:57 - 2022-07-05 17:30 - 000000000 ____D C:\Users\romai\AppData\Roaming\Adobe 2022-06-28 13:57 - 2022-07-02 19:37 - 000000000 ____D C:\Users\romai\AppData\Local\Publishers 2022-06-28 13:57 - 2022-06-28 14:27 - 000000000 ____D C:\Users\romai\AppData\Local\ConnectedDevicesPlatform 2022-06-28 13:57 - 2022-06-28 13:57 - 000000000 ___RD C:\Users\romai\3D Objects 2022-06-28 13:57 - 2022-06-28 13:57 - 000000000 ____D C:\Users\romai\AppData\LocalLow\Intel 2022-06-28 13:57 - 2022-06-28 13:57 - 000000000 ____D C:\Users\romai\AppData\Local\VirtualStore 2022-06-28 13:51 - 2022-07-26 18:03 - 000002428 _____ C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Public\Documents\Mes images 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Voisinage réseau 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Modèles 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Mes documents 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Menu Démarrer 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Documents\Mes images 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\ProgramData\Modèles 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\ProgramData\Bureau 2022-06-28 13:42 - 2022-06-28 13:42 - 000000000 _SHDL C:\Program Files\Fichiers communs 2022-06-22 21:51 - 2022-06-17 22:56 - 033966890 _____ C:\Users\romai\Downloads\Kim Jong Boom MTR V5.wav 2022-06-22 21:51 - 2022-06-15 21:10 - 034097754 _____ C:\Users\romai\Downloads\KIM JONG BOOM MTR V4.wav 2022-05-23 09:25 - 2022-07-29 10:01 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2022-05-23 09:24 - 2022-05-23 09:24 - 000000000 ____D C:\ProgramData\Portrait Displays 2022-05-23 09:13 - 2022-08-10 20:14 - 000000000 ____D C:\ProgramData\Common 2022-05-13 11:40 - 2022-05-13 11:40 - 000000000 _SHDL C:\Documents and Settings ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-08-10 20:19 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-08-10 19:14 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemTemp 2022-08-10 19:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-08-10 19:01 - 2021-06-05 20:14 - 000772574 _____ C:\WINDOWS\system32\perfh00C.dat 2022-08-10 19:01 - 2021-06-05 20:14 - 000148820 _____ C:\WINDOWS\system32\perfc00C.dat 2022-08-10 19:01 - 2021-06-05 14:09 - 000000000 ____D C:\WINDOWS\INF 2022-08-10 18:56 - 2021-11-05 07:27 - 000000000 ____D C:\ProgramData\NVIDIA 2022-08-10 18:54 - 2021-11-05 07:25 - 000000000 ____D C:\Intel 2022-08-10 18:54 - 2021-06-05 14:10 - 000000000 ___HD C:\Program Files\WindowsApps 2022-08-10 18:54 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ServiceState 2022-08-10 18:54 - 2020-12-05 20:22 - 000012288 ___SH C:\DumpStack.log.tmp 2022-08-10 18:54 - 2020-11-19 09:33 - 000000000 ____D C:\ProgramData\Packages 2022-08-10 18:53 - 2021-06-05 14:01 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2022-08-10 16:23 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemResources 2022-08-10 16:23 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-08-10 16:23 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-08-10 15:34 - 2021-06-05 14:01 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-08-10 15:31 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2022-08-10 15:19 - 2021-06-05 14:10 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-08-10 09:14 - 2021-11-05 07:52 - 000000000 ____D C:\ProgramData\OmApSvcBroker 2022-08-09 11:28 - 2020-12-05 21:28 - 000000000 ____D C:\Program Files\Microsoft Office 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-08-08 16:45 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\Provisioning 2022-08-08 12:26 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Windows Defender 2022-08-07 12:51 - 2020-11-19 09:32 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-08-04 08:52 - 2021-11-05 07:23 - 000000000 ____D C:\ProgramData\A-Volute 2022-07-13 10:34 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2022-07-13 10:34 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\setup 2022-07-13 10:34 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2022-07-13 10:34 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-07-13 10:34 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-07-12 18:35 - 2021-11-05 07:20 - 000000000 ____D C:\ProgramData\Package Cache ==================== Fichiers à la racine de certains dossiers ======== 2022-07-05 17:28 - 2022-07-05 17:28 - 000000410 _____ () C:\Users\romai\AppData\Local\oobelibMkey.log ==================== SigCheckExt ========================= 2022-07-06 11:57 - 2012-06-14 17:18 - 000359936 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6PPM.DLL 2022-07-06 11:57 - 2012-06-14 17:18 - 000039424 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6UI.DLL 2022-05-23 09:25 - 2022-07-29 10:01 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2022-07-06 11:57 - 2012-06-14 17:18 - 000366592 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNMNPPM.DLL 2021-11-05 07:51 - 2011-04-16 02:26 - 001598464 _____ (Micro-Star International Co., Ltd.) C:\WINDOWS\SysWOW64\MSIWmiAcpi.dll 2022-08-08 15:52 - 2022-08-08 15:52 - 002370048 _____ (Farbar) C:\Users\romai\Downloads\FRST64.exe 2022-06-28 14:55 - 2022-06-28 14:55 - 029988680 _____ (The qBittorrent project) C:\Users\romai\Downloads\qbittorrent_4.4.3.1_x64_setup.exe 2022-08-10 20:17 - 2022-08-10 20:17 - 003489992 _____ (Nicolas Coolman) C:\Users\romai\Downloads\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} timeout 2 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {0033a8b6-f734-11ec-98b2-e1722685acbc} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 11 locale fr-FR inherit {bootloadersettings} recoverysequence {0033a8b8-f734-11ec-98b2-e1722685acbc} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {0033a8b6-f734-11ec-98b2-e1722685acbc} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {0033a8b8-f734-11ec-98b2-e1722685acbc} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{0033a8b9-f734-11ec-98b2-e1722685acbc} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{0033a8b9-f734-11ec-98b2-e1722685acbc} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {0033a8b6-f734-11ec-98b2-e1722685acbc} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {0033a8b8-f734-11ec-98b2-e1722685acbc} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {0033a8b9-f734-11ec-98b2-e1722685acbc} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================